Vulnerability index

Browse CVEs

3,025 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Powerpoint MEDIUM 5.1
CVE-2006-3590EPSS 14%

mso.dll, as used by Microsoft PowerPoint 2000 through 2003, allows user-assisted attackers to execute arbitrary commands via a malformed shape contai…

Mitigation only
Fix from $1,600 2006-07-14
Excel HIGH 9.3
CVE-2006-1301EPSS 10%

Microsoft Excel 2000 through 2004 allows user-assisted attackers to execute arbitrary code via a .xls file with a crafted SELECTION record that trigg…

Mitigation only
Fix from $1,950 2006-07-13
Excel HIGH 9.3
CVE-2006-1309EPSS 10%

Microsoft Excel 2000 through 2004 allows user-assisted attackers to execute arbitrary code via a .xls file with a crafted LABEL record that triggers …

Mitigation only
Fix from $1,950 2006-07-13
Ie MEDIUM 5.0
CVE-2006-3513EPSS 23%

danim.dll in Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (application crash) by accessing the Data property of…

No fix yet
Fix from $1,600 2006-07-11
Office HIGH 9.3
CVE-2006-0007EPSS 20%

Buffer overflow in GIFIMP32.FLT, as used in Microsoft Office 2003 SP1 and SP2, Office XP SP3, Office 2000 SP3, and other products, allows user-assist…

Mitigation only
Fix from $1,950 2006-07-11
Office HIGH 9.3
CVE-2006-1316EPSS 15%

Unspecified vulnerability in Microsoft Office 2003 SP1 and SP2, Office XP SP3, Office 2000 SP3, and other products, allows user-assisted attackers to…

Mitigation only
Fix from $1,950 2006-07-11
Office HIGH 9.3
CVE-2006-2389EPSS 39%

Unspecified vulnerability in Microsoft Office 2003 SP1 and SP2, Office XP SP3, Office 2000 SP3, and other products, allows user-assisted attackers to…

Mitigation only
Fix from $1,950 2006-07-11
Server Service MEDIUM 5.0
CVE-2006-1315EPSS 49%

The Server Service (SRV.SYS driver) in Microsoft Windows 2000 SP4, XP SP1 and SP2, Server 2003 up to SP1, and other products, allows remote attackers…

Mitigation only
Fix from $1,600 2006-07-11
Office MEDIUM 5.1
CVE-2006-3493EPSS 40%

Buffer overflow in LsCreateLine function (mso_203) in mso.dll and mso9.dll, as used by Microsoft Word and possibly other products in Microsoft Office…

No fix yet
Fix from $1,600 2006-07-10
Ie MEDIUM 5.0
CVE-2006-3472EPSS 11%

Microsoft Internet Explorer 6.0 and 6.0 SP1 allows remote attackers to cause a denial of service via an HTML page with an A tag containing a long tit…

No fix yet
Fix from $1,600 2006-07-10
Ie MEDIUM 5.0
CVE-2006-3471EPSS 21%

Microsoft Internet Explorer 6 on Windows XP allows remote attackers to cause a denial of service (crash) via a table with a frameset as a child, whic…

Mitigation only
Fix from $1,600 2006-07-10
Excel HIGH 7.5
CVE-2006-3431EPSS 28%

Buffer overflow in certain Asian language versions of Microsoft Excel might allow user-assisted attackers to execute arbitrary code via a crafted STY…

No fix yet
Fix from $1,950 2006-07-07
Windows 2003 Server MEDIUM 5.4
CVE-2006-3351EPSS 7%

Buffer overflow in Windows Explorer (explorer.exe) on Windows XP and 2003 allows user-assisted attackers to cause a denial of service (repeated crash…

No fix yet
Fix from $1,600 2006-07-06
Ie MEDIUM 5.0
CVE-2006-3354EPSS 17%

Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (crash) by setting the Filter property of an ADODB.Recordset Activ…

No fix yet
Fix from $1,600 2006-07-06
Windows Live Messenger MEDIUM 5.1
CVE-2006-3250EPSS 7%

Heap-based buffer overflow in Windows Live Messenger 8.0 allows user-assisted attackers to execute arbitrary code via a crafted Contact List (.ctt) f…

No fix yet
Fix from $1,600 2006-06-27
Excel HIGH 9.3
CVE-2006-3059EPSS 41%

Unspecified vulnerability in Microsoft Excel 2000 through 2004 allows remote user-assisted attackers to execute arbitrary code via unspecified vector…

Mitigation only
Fix from $1,950 2006-06-17
Ie HIGH 7.6
CVE-2006-2385EPSS 20%

Unspecified vulnerability in Microsoft Internet Explorer 5.01 SP4 and 6 SP1 and earlier allows user-assisted remote attackers to execute arbitrary co…

Mitigation only
Fix from $1,950 2006-06-13
Netmeeting HIGH 7.8
CVE-2006-2919EPSS 23%

Unspecified vulnerability in Microsoft NetMeeting 3.01 allows remote attackers to cause a denial of service (crash or CPU consumption) and possibly e…

Mitigation only
Fix from $1,950 2006-06-09
Ie MEDIUM 5.1
CVE-2006-2094EPSS 23%

Microsoft Internet Explorer before Windows XP Service Pack 2 and Windows Server 2003 Service Pack 1, when Prompt is configured in Security Settings, …

No fix yet
Fix from $1,600 2006-04-29
Outlook MEDIUM 5.0
CVE-2006-2055EPSS 15%

Argument injection vulnerability in Microsoft Outlook 2003 SP1 allows user-assisted remote attackers to modify command line arguments to an invoked m…

Mitigation only
Fix from $1,600 2006-04-26
Data Access Components MEDIUM 5.1
CVE-2006-0003EPSS 83%

Unspecified vulnerability in the RDS.Dataspace ActiveX control, which is contained in ActiveX Data Objects (ADO) and distributed in Microsoft Data Ac…

No fix yet
Fix from $1,600 2006-04-12
Ie HIGH 7.5
CVE-2006-1185EPSS 70%

Unspecified vulnerability in Microsoft Internet Explorer 5.01 through 6 allows remote attackers to execute arbitrary code via certain invalid HTML th…

Mitigation only
Fix from $1,950 2006-04-11
Ie MEDIUM 5.0
CVE-2006-1719EPSS 14%

Internet Explorer 6 allows remote attackers to cause a denial of service (application crash) via any scrollbar Cascading Style Sheets (CSS) property.

Mitigation only
Fix from $1,600 2006-04-11
Isa Server HIGH 7.5
CVE-2006-1651EPSS 15%

Microsoft ISA Server 2004 allows remote attackers to bypass certain filtering rules, including ones for (1) ICMP and (2) TCP, via IPv6 packets. NOTE…

Mitigation only
Fix from $1,950 2006-04-06
Windows 2000 MEDIUM 5.1
CVE-2006-1591EPSS 7%

Heap-based buffer overflow in Microsoft Windows Help winhlp32.exe allows user-assisted attackers to execute arbitrary code via crafted embedded image…

No fix yet
Fix from $1,600 2006-04-03
Office HIGH 9.3
CVE-2006-1540EPSS 29%

MSO.DLL in Microsoft Office 2000, Office XP (2002), and Office 2003 allows user-assisted attackers to cause a denial of service and execute arbitrary…

No fix yet
Fix from $1,950 2006-03-30
.net Framework MEDIUM 5.1
CVE-2006-1511EPSS 8%

Buffer overflow in the ILASM assembler in the Microsoft .NET 1.0 and 1.1 Framework might allow user-assisted attackers to execute arbitrary code via …

No fix yet
Fix from $1,600 2006-03-30
Ie HIGH 7.5
CVE-2006-1388EPSS 55%

Unspecified vulnerability in Microsoft Internet Explorer 6.0 allows remote attackers to execute HTA files via unknown vectors.

Mitigation only
Fix from $1,950 2006-03-24
Ie HIGH 9.3
CVE-2006-1359EPSS 68%

Microsoft Internet Explorer 6 and 7 Beta 2 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a certain cre…

No fix yet
Fix from $1,950 2006-03-23
Visual Interdev MEDIUM 5.1
CVE-2006-1043EPSS 22%

Stack-based buffer overflow in Microsoft Visual Studio 6.0 and Microsoft Visual InterDev 6.0 allows user-assisted attackers to execute arbitrary code…

No fix yet
Fix from $1,600 2006-03-07